Years ago I used some online lists to ban at the firewall all Russian and Chinese ip addresses (we would never have customers in those countries). It help cut down scans greatly but unfortunately the lists just aren't that accurate. I'll look at bot traffic occasionally and do a geoip lookup at a couple of places and I'll still get Russian ip addresses. And a traceroute usually seems to confirm it.
Years ago I used some online lists to ban at the firewall all Russian and Chinese ip addresses (we would never have customers in those countries). It help cut down scans greatly but unfortunately the lists just aren't that accurate. I'll look at bot traffic occasionally and do a geoip lookup at a couple of places and I'll still get Russian ip addresses. And a traceroute usually seems to confirm it.
Earlier HN discussion on topic: https://news.ycombinator.com/item?id=50041619
Do we have any stats for bot activity on reddit and X?
Would be fun to watch see those numbers.
I bet the ukrainians have some good stats to follow up these strikes.